基于双重引导的目标对抗攻击方法
孙月,张兴兰
Targeted adversarial attack method based on dual guidance
Yue SUN,Xinglan ZHANG
表 5
不同生成式攻击方法在CIFAR10和SVHN数据集上的目标攻击成功率
Tab.5
Targeted ASRs of various generative attack methods on CIFAR10 and SVHN datasets
数据集
攻击方法
tASR/%
ResNet18
Inv3
DenseNet
WideResNet
平均
CIFAR10
AdvGAN
39.68
61.08
70.28
65.34
59.10
AdvGAN+U
93.00
95.80
96.19
97.03
95.51
本研究方法
93.52
96.01
97.09
97.66
96.07
SVHN
AdvGAN
97.00
94.75
95.30
95.91
95.74
AdvGAN+U
97.11
96.18
97.04
97.15
96.87
本研究方法
97.79
97.07
97.78
97.69
97.58